VP, IS Risk - Assurance

WhiteCrow Research

Bengaluru

On-site

INR 4,000,000 - 7,000,000

Full time

11 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

WhiteCrow Research is seeking a VP, IS Risk - Assurance for a client in the consumer financial services space, based in Bengaluru. You will oversee end-to-end control assurance within Information Security, lead 1LOD assessment programs, and coordinate audits to meet client expectations and regulatory requirements.

You will collaborate with Sourcing, Legal, and SME teams to review third-party contracts, renew cyber insurance, and develop security standards.

Qualifications

  • Bachelor’s degree in Computer Engineering or related field, with a minimum of 10+ years of experience in Information Security OR in lieu of the Bachelor's degree, a minimum of 12+ years of experience in Information Security.
  • 8+ years of progressive experience in information security, technology risk, security controls assurance, or audit, including 5+ years leading teams.
  • Good understanding of IS Risk Management Concepts
  • Strong working knowledge of IT related US Banking regulations & industry best practices (NIST, PCI DSS, HIPAA, CRI etc.)
  • Demonstrated experience designing and executing control testing/assurance programs across multiple security domains
  • Exposure to working with external attack surface monitoring tools to partner with internal stakeholders to remediate external risk exposure to the organization
  • Proven ability to influence and partner across Information Security, Technology, Risk, Compliance, and Audit functions
  • Excellent executive communication skills—able to synthesize complex findings into clear, actionable insights.
  • Excellent interpersonal skills with ability to influence team members, management & external groups
  • Self-motivated & able to work independently or in a team environment & work with virtual teams.

Responsibilities

  • Overseeing and executing end to end control assurance activities for all sub functions within Information Security
  • Formalizing, Pilot and executing first line of defence (1LOD) assessments for Information Security to proactively identify risks to the business
  • Leading the client assessments program by liaising with internal client partners to ensure is meeting client expectations for Information Security Assessments and Audits
  • Collaborating with Sourcing and Legal teams to review third-party supplier contracts, ensuring contractual terms align with the defined scope of services and comply with applicable regulatory requirements and governance frameworks
  • Supporting execution of FedLine and other assessments by working with internal SMEs, Second and Third Line of defense teams
  • Supporting renewal of Cyber Insurance for the organization by working with insurance brokers and key internal stakeholders
  • Developing Financial Security Assurance specific security standards and procedures
  • Performing other duties and/or special projects as assigned.

Skills

IS Risk Management
Security Controls
Audits
Executive Communication
Stakeholder Influence

Education

Bachelor's degree in Computer Engineering or related field

Tools

NIST
PCI DSS
HIPAA

Job description

We are global talent research, insight, and sourcing specialists with offices in the UK, USA, Singapore, Malaysia, Hong Kong, Dubai, and India. Our international reach has helped us to understand and penetrate specialist markets at a global level. In addition to this, our service is also extended to complement our client’s in-house talent acquisition teams.

About our client

Our client operates in the consumer financial services space, focusing on making everyday purchases and essential needs more accessible through flexible financing solutions. They support individuals across their financial journey—from obtaining their first line of credit to managing long-term financial flexibility—by enabling more informed and responsible credit decisions.

Our client has built a vast network that connects consumers with a wide range of small and mid-sized businesses, as well as providers in the health and wellness sector. Through this ecosystem, they play a meaningful role in supporting both customer financial well-being and the growth of businesses that form a critical part of the broader economy.

As a VP, IS Risk - Assurance

you will be responsible for...

  • Overseeing and executing end to end control assurance activities for all sub functions within Information Security
  • Formalizing, Pilot and executing first line of defence (1LOD) assessments for Information Security to proactively identify risks to the business
  • Leading the client assessments program by liaising with internal client partners to ensure is meeting client expectations for Information Security Assessments and Audits
  • Collaborating with Sourcing and Legal teams to review third-party supplier contracts, ensuring contractual terms align with the defined scope of services and comply with applicable regulatory requirements and governance frameworks
  • Supporting execution of FedLine and other assessments by working with internal SMEs, Second and Third Line of defense teams
  • Supporting renewal of Cyber Insurance for the organization by working with insurance brokers and key internal stakeholders
  • Developing Financial Security Assurance specific security standards and procedures
  • Performing other duties and/or special projects as assigned.
What you already have...
  • Bachelor’s degree in Computer Engineering or related field, with a minimum of 10+ years of experience in Information Security OR in lieu of the Bachelor's degree, a minimum of 12+ years of experience in Information Security.
  • 8+ years of progressive experience in information security, technology risk, security controls assurance, or audit, including 5+ years leading teams.
  • Good understanding of IS Risk Management Concepts
  • Strong working knowledge of IT related US Banking regulations & industry best practices (NIST, PCI DSS, HIPAA, CRI etc.)
  • Demonstrated experience designing and executing control testing/assurance programs across multiple security domains
  • Exposure to working with external attack surface monitoring tools to partner with internal stakeholders to remediate external risk exposure to the organization
  • Proven ability to influence and partner across Information Security, Technology, Risk, Compliance, and Audit functions
  • Excellent executive communication skills—able to synthesize complex findings into clear, actionable insights.
  • Excellent interpersonal skills with ability to influence team members, management & external groups
  • Self-motivated & able to work independently or in a team environment & work with virtual teams.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Third-Party Risk Consultant
Senior Third-Party Risk Consultant

EY • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Vice President-Information Security.Information Security Group-ISG
Vice President-Information Security.Information Security Group-ISG

Mashreq • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Senior Security Compliance Analyst
Senior Security Compliance Analyst

TaskUs • India

On-site
INR 1,400,000 - 2,100,000
Group Head of Information Security
Group Head of Information Security

Davies • Pune District

On-site
INR 400,000 - 750,000
IN-Senior Associate_ Control Testing _Internal Audit Services _Advisory_Chennai
IN-Senior Associate_ Control Testing _Internal Audit Services _Advisory_Chennai

Price Waterhouse Cooper LLP • Chennai District

On-site
INR 1,200,000 - 1,800,000
Technology Risk
Technology Risk

Airtel Payments Bank • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Information Security Engineer
Information Security Engineer

Cloudxtreme • Hyderabad, Chennai District, Bengaluru

On-site
INR 1,200,000 - 2,100,000
Information Security Manager
Information Security Manager

Mondee • Hyderabad

On-site
INR 3,500,000 - 7,000,000
Cyber Assurance Controls Testing
Cyber Assurance Controls Testing

Barclays • India

On-site
INR 1,800,000 - 3,200,000
Compliance Assessment - Senior Consultant
Compliance Assessment - Senior Consultant

Deloitte Development LLC • Bengaluru

On-site
INR 2,500,000 - 4,500,000